[FFmpeg-trac] #123(FFplay:open): Fuzzed sample crashes ffplay

FFmpeg trac at avcodec.org
Sat Jun 4 00:42:15 CEST 2011


#123: Fuzzed sample crashes ffplay
--------------------+----------------------
Reporter:  cehoyos  |       Owner:  michael
    Type:  defect   |      Status:  open
Priority:  normal   |   Component:  FFplay
 Version:  git      |  Resolution:
Keywords:           |  Blocked By:
Blocking:           |  Reproduced:  0
Analyzed:  0        |
--------------------+----------------------
Changes (by michael):

 * status:  new => open


Comment:

 Id guess SDL bug, but i could be wrong
 mplayer crashes too

 ==21084== Invalid write of size 8
 ==21084==    at 0x4C2A33A: memcpy (mc_replace_strmem.c:635)
 ==21084==    by 0x974550: av_image_copy (string3.h:52)
 ==21084==    by 0x68E640: av_picture_copy (imgconvert.c:669)
 ==21084==    by 0x437E2B: video_thread (ffplay.c:1404)
 ==21084==    by 0x5129874: ??? (in /usr/lib/libSDL-1.2.so.0.11.3)
 ==21084==    by 0x516C048: ??? (in /usr/lib/libSDL-1.2.so.0.11.3)
 ==21084==    by 0x66E9D8B: start_thread (pthread_create.c:304)
 ==21084==    by 0x69E704C: clone (clone.S:112)
 ==21084==  Address 0xe618108 is not stack'd, malloc'd or (recently) free'd

-- 
Ticket URL: <https://ffmpeg.org/trac/ffmpeg/ticket/123#comment:1>
FFmpeg <http://ffmpeg.org>
FFmpeg issue tracker


More information about the FFmpeg-trac mailing list